Site icon WinCert

Hackers are using tool that can steal Gmail, Microsoft and Yahoo inboxes

<p>Google&&num;8217&semi;s Threat Analysis Group &lpar;TAG&rpar; has managed to acquire a hacker tool named Hyperscape that can be used to download complete inboxes from most popular e-mail platforms like Microsoft Outlook&comma; Gmail&comma; Yahoo&comma; and others&period;<&sol;p>&NewLine;<p><img class&equals;"alignnone size-full wp-image-3331" src&equals;"https&colon;&sol;&sol;www&period;wincert&period;net&sol;wp-content&sol;uploads&sol;2019&sol;09&sol;hacked&lowbar;image&period;jpg" alt&equals;"" width&equals;"640" height&equals;"415" &sol;><&sol;p>&NewLine;<p>TAG team is currently running various simulations to get more information on how this tool can be used&period;<&sol;p>&NewLine;<p>According to Google&comma; Hyperspace can work on attackers&&num;8217&semi; endpoints and therefore victims don&&num;8217&semi;t have to run any malware like a trojan horse for Hyperspace to get access to their inboxes&period; For a tool to be deployed&comma; hackers have to get access to users&&num;8217&semi; account credentials or session cookies&period;<&sol;p>&NewLine;<p>It seems that the Hyperspace tool can trick the email service into thinking that it is being accessed by outdated browsers&period; To be able to display the inbox properly&comma; the email server switches to a basic HTML view&period; After that&comma; the tool changes the inbox language to English and starts opening and downloading emails one by one in &period;eml format&period;<&sol;p>&NewLine;<p>In order to stay undetected&comma; the tool is only accessing emails that have been marked as read&period; Once done&comma; the tool deletes any warning emails and reverts inbox language to its original state&period;<&sol;p>&NewLine;<p>It appears that the Hyperscape tool is currently targeting email accounts located in Iran&comma; but other hackers group could acquire this tool to target any other inbox they want&period;<&sol;p>&NewLine;

Exit mobile version